Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xj46-h769-7fq6

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

omr-admin.py in openmptcprouter-vps-admin 0.57.3 and earlier compares the user provided password with the original password in a length dependent manner, which allows remote attackers to guess the password via a timing attack.

omr-admin.py in openmptcprouter-vps-admin 0.57.3 and earlier compares the user provided password with the original password in a length dependent manner, which allows remote attackers to guess the password via a timing attack.

EPSS

Процентиль: 80%
0.01342
Низкий

Дефекты

CWE-287

Связанные уязвимости

CVSS3: 5.9
nvd
почти 5 лет назад

omr-admin.py in openmptcprouter-vps-admin 0.57.3 and earlier compares the user provided password with the original password in a length dependent manner, which allows remote attackers to guess the password via a timing attack.

EPSS

Процентиль: 80%
0.01342
Низкий

Дефекты

CWE-287